Home
Categories
EXPLORE
Music
Society & Culture
Comedy
History
True Crime
Religion & Spirituality
News
About Us
Contact Us
Copyright
© 2024 PodJoint
00:00 / 00:00
Sign in

or

Don't have an account?
Sign up
Forgot password
https://is1-ssl.mzstatic.com/image/thumb/Podcasts211/v4/38/7a/20/387a20fe-2c8a-ecb9-1dd7-a0ee896a0fde/mza_12382312868503381387.jpeg/600x600bb.jpg
GRC Uncensored
Chaos
21 episodes
4 weeks ago
GRC Uncensored is an experimental podcast designed to elevate real conversations with GRC professionals, auditors, regulators, and those building programs around it. Your hosts are Troy Fine and Elliot Volkman.

Hosted on Acast. See acast.com/privacy for more information.

Show more...
Tech News
Business,
News,
Management
RSS
All content for GRC Uncensored is the property of Chaos and is served directly from their servers with no modification, redirects, or rehosting. The podcast is not affiliated with or endorsed by Podjoint in any way.
GRC Uncensored is an experimental podcast designed to elevate real conversations with GRC professionals, auditors, regulators, and those building programs around it. Your hosts are Troy Fine and Elliot Volkman.

Hosted on Acast. See acast.com/privacy for more information.

Show more...
Tech News
Business,
News,
Management
https://assets.pippa.io/shows/6702dcb9c88f09c3e0b9a10a/1728388304063-c23668ff-e7ba-4978-a194-a915895310b0.jpeg
The Commoditization of Compliance and SOC 2
GRC Uncensored
40 minutes 19 seconds
1 year ago
The Commoditization of Compliance and SOC 2

In the first episode of 'GRC Uncensored,' hosts Troy Fine, dubbed the 'GRC Meme King,' and Elliot Volkman, alongside guest Kendra Cooley dive into the complexities of Governance, Risk, and Compliance (GRC) in cybersecurity. The discussion unravels the 'love-hate' relationship many security professionals have with compliance frameworks like SOC 2, exploring how they have become commoditized and possibly devalued over time.


The conversation touches upon the challenges security practitioners face in conveying the true value of GRC to businesses, the potential pitfalls of 'SOC in a box' offerings, and the broader implications of compliance becoming a 'check the box' exercise. Moreover, the episode delves into the broader regulatory landscape and the ongoing debates about the role of government regulations in cybersecurity compliance. This candid dialogue sets the stage for future episodes that promise further to dissect the nuances of cybersecurity audits and standards.


00:00 Welcome to GRC Uncensored

01:34 Introducing Kendra Cooley

02:05 Love-Hate Relationship with GRC

03:16 The SOC 2 Debate

04:33 Challenges with SOC 2 Audits

09:10 The Value of SOC 2 in the Industry

12:04 The Evolution of Compliance Frameworks

20:39 False Sense of Security in Compliance

24:46 The Buzz Around AI and Quantum

25:10 Staying Updated as a Security Professional

26:45 Challenges in Penetration Testing and Vendor Assessments

27:37 Compliance and Its Impact on Security

30:10 Government Regulations and Their Effectiveness

32:23 The Complexity of Privacy Laws

38:29 The Role of GRC Teams in Risk Management

42:30 Concluding Thoughts and Future Episodes



Hosted on Acast. See acast.com/privacy for more information.

GRC Uncensored
GRC Uncensored is an experimental podcast designed to elevate real conversations with GRC professionals, auditors, regulators, and those building programs around it. Your hosts are Troy Fine and Elliot Volkman.

Hosted on Acast. See acast.com/privacy for more information.